11-16-2011 04:58 AM - edited 03-10-2019 05:32 AM
Hi
I might be getting the wrong end of the stick, I'm looking at Cisco's IPS portfolio and like the sound of the IPS SSP in a 5585-X. I would like the IPS SSM to act passively and just monitor for illegal traffic. Traffic would not be passed through the 5585-X, only to it.
I would want the IPS SSP to be sent a copy of the traffic and then monitor this.
Would this be possible using the IPS SSP?
Many thanks
Solved! Go to Solution.
11-18-2011 01:58 PM
The IDS/IPS module will only receive traffic only after it passes through the ASA. The security policy on the IPS module can be set for non-blocking actions if you wish.
-Robert
11-18-2011 01:58 PM
The IDS/IPS module will only receive traffic only after it passes through the ASA. The security policy on the IPS module can be set for non-blocking actions if you wish.
-Robert
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide